CVE-2021-33022: Philips Vue PACS Cleartext Transmission of Sensitive Information
Philips Vue PACS versions 12.2.x.x and prior transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-33022.
What is the severity rating of CVE-2021-33022?
CVE-2021-33022 has a severity rating of 7.5 (High).
Which Philips products are affected by CVE-2021-33022?
Philips Myvue, Philips Speech, Philips Vue Motion, and Philips Vue PACS versions 12.2.x.x and prior are affected by CVE-2021-33022.
How does CVE-2021-33022 impact affected products?
CVE-2021-33022 transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
Where can I find more information about CVE-2021-33022?
You can find more information about CVE-2021-33022 at the following references: [Philips Product Security](http://www.philips.com/productsecurity) and [CISA ICS Advisory](https://www.cisa.gov/uscert/ics/advisories/icsma-21-187-01).